Job Responsibilities :
- Lead triage bridges, coordinate containment, ensure evidence integrity.
- Perform forensic analysis and threat hunting across EDR / XDR and OT telemetry.
- Design & facilitate simulations (tabletop, red / purple team) across time zones.
- Develop and deliver IR training modules for engineering and executives.
- Refine runbooks based on incident lessons learned.
- Report metrics (MTTD, MTTR, drill performance) to ELT and Cyber Security Steer Cos.
Mandatory Skills :
5+ years handson IR / SOC or digital forensics; prior incident command experience.Expertise with Jira / Confluence, Sentinel One, Crowd Strike, AWS / Azure / GCP cloud environments.Demonstrated experience running simulations in distributed environments.Fluent English communication (CEFR C1 / C2); strong incident bridge leadership.Comfort working overnight / weekend shifts as part of followthesun model.Skills Required
Gcp, EDR, Azure, Aws, ELT